npm weekly #200: Don’t miss today’s tech talk, 1 million packages, plus learn how npm’s security team saved the day!

npm, Inc.
npm, Inc.
Published in
4 min readJun 6, 2019

I want my npm — a tech talk not to miss

The unparalleled size and vitality of the JavaScript ecosystem makes it ever more possible to build great things faster, especially in open source. Unfortunately, security, compliance, and team complexity concerns may hamper the ability of JavaScript developers to take full advantage of that ecosystem within the enterprise.

Check out this morning’s tech talk to learn how JavaScript may be used safely and efficiently in an enterprise context while still using the tools that have made it the most dynamic force in leading-edge software development.

10am PT TODAY (Thursday, June 6). Sign up here to attend or watch the replay!

Plot to steal cryptocurrency foiled by the npm security team

Earlier this week, the npm security team, in collaboration with Komodo, helped protect over $13 million USD in cryptocurrency assets. npm’s security team identified a threat and immediately responded by notifying and coordinating with Komodo to protect their users, as well as remove the malware from npm.

Read more details on the npm blog.

One million packages

We hit the 1 million packages mark earlier this week and continue to steadily grow!

Plus, we’re at npm Weekly issue 200! Thank you to our wonderful community for contributing, reading, and for sharing your awesome projects with us. Let’s keep it going!

2FA for days

Fun fact of the day: 23.3% of all publishes in the last 30 days were done using two-factor authentication. Keep up the good work, everyone!

Calling all wombats

Join our mission to take Open Source development to entirely new places. We’re on the lookout to fill some exciting roles including an open source engineer, senior site reliability engineer, business development manager, and office manager. Head over to npmjs.com/jobs for more details and to apply.

Next stop, NodeConf Columbia!

CLI & Community Architect, Kat Marchán, will be sharing, “tink: a next generation package management runtime” at NodeConf Columbia (the first international event focused on the entire Node.js ecosystem) later this month. Tickets are still available — sign up here!

npm.community Corner

Did you know that npm.community has 13+ categories for you to find the latest news, an answer to your support question, or display your npm package (in showcase)? If you haven’t checked it out yet, head over to npm.community and find your favorite category!

Join us for NodeSchool Oakland

Our favorite Node.js community learning environment returns to npm HQ on Saturday, June 15, from 1–5pm. If you’re in the area, join us for NodeSchool Oakland! Whether you’re a mentor-type or a learner-type you’re welcome to come and talk all things Node. Learn more about NodeSchools nationwide and globally.

Building amazing things together

The same tools that empower developers to work together on Open Source projects can make teams more efficient when collaborating on mission-critical applications.

Learn how npm Orgs can help your team!

Thank you JSConf EU

npm’s wombats had an amazing time at JSConf EU. Check out these highlights below, watch the video of Kat’s presentation, “tink: A next generation package manager” and keep an eye on this space for Laurie’s presentation video!

--

--

npm, Inc.
npm, Inc.

npm is the package manager for JavaScript and the world’s largest software registry.